<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>William Zhou &#187; security</title>
	<atom:link href="http://williamzhou.com/blog/tag/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://williamzhou.com/blog</link>
	<description>My personal blog with a touch of the latest technology news.</description>
	<lastBuildDate>Wed, 24 Dec 2008 04:38:58 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Best Anti-Piracy Ad</title>
		<link>http://williamzhou.com/blog/2007/09/best-anti-piracy-ad/</link>
		<comments>http://williamzhou.com/blog/2007/09/best-anti-piracy-ad/#comments</comments>
		<pubDate>Sat, 08 Sep 2007 19:16:36 +0000</pubDate>
		<dc:creator>William</dc:creator>
				<category><![CDATA[Funny]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://shadowzblog.com/2007/09/08/best-anti-piracy-ad/</guid>
		<description><![CDATA[They need to make more ads like this.

]]></description>
			<content:encoded><![CDATA[<p>They need to make more ads like this.<br />
<object width="425" height="350"><param name="movie" value="http://www.youtube.com/v/MTbX1aMajow"></param><param name="wmode" value="transparent"></param><embed src="http://www.youtube.com/v/MTbX1aMajow" type="application/x-shockwave-flash" wmode="transparent" width="425" height="350"></embed></object></p>
]]></content:encoded>
			<wfw:commentRss>http://williamzhou.com/blog/2007/09/best-anti-piracy-ad/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Sorry but, are you a human?</title>
		<link>http://williamzhou.com/blog/2007/07/sorry-but-are-you-a-human/</link>
		<comments>http://williamzhou.com/blog/2007/07/sorry-but-are-you-a-human/#comments</comments>
		<pubDate>Fri, 06 Jul 2007 05:41:37 +0000</pubDate>
		<dc:creator>William</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[Google]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://beyond-innovation.org/shadowz/2007/07/05/sorry-but-are-you-a-human/</guid>
		<description><![CDATA[Ha! It&#8217;s Google&#8217;s anti robot technology where when you signup for a service, they present you with a few letters and number in picture form and you have to enter them in text form. Of course, only humans  will be able to enter the text, therefore, keeping the robots out!
]]></description>
			<content:encoded><![CDATA[<p><img src="http://blogoscoped.com/files/anti-captcha.jpg" height="259" width="459" /></p>
<p>Ha! It&#8217;s Google&#8217;s anti robot technology where when you signup for a service, they present you with a few letters and number in picture form and you have to enter them in text form. Of course, only humans  will be able to enter the text, therefore, keeping the robots out!</p>
]]></content:encoded>
			<wfw:commentRss>http://williamzhou.com/blog/2007/07/sorry-but-are-you-a-human/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The secret history of hacking</title>
		<link>http://williamzhou.com/blog/2007/06/the-secret-history-of-hacking/</link>
		<comments>http://williamzhou.com/blog/2007/06/the-secret-history-of-hacking/#comments</comments>
		<pubDate>Sun, 10 Jun 2007 05:46:06 +0000</pubDate>
		<dc:creator>William</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[Apple]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Mac]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[PC]]></category>
		<category><![CDATA[Personal]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[world]]></category>

		<guid isPermaLink="false">http://beyond-innovation.org/shadowz/2007/06/09/the-secret-history-of-hacking/</guid>
		<description><![CDATA[A must watch for all geeks.
 
]]></description>
			<content:encoded><![CDATA[<p>A must watch for all geeks.</p>
<p><embed style="width:400px; height:326px;" id="VideoPlayback" type="application/x-shockwave-flash" src="http://video.google.com/googleplayer.swf?docId=5464925144369700635&#038;hl=en" flashvars=""> </embed></p>
]]></content:encoded>
			<wfw:commentRss>http://williamzhou.com/blog/2007/06/the-secret-history-of-hacking/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Dreamhost Leaked thousands of FTP Passwords!</title>
		<link>http://williamzhou.com/blog/2007/06/dreamhost-leaked-thousands-of-ftp-passwords/</link>
		<comments>http://williamzhou.com/blog/2007/06/dreamhost-leaked-thousands-of-ftp-passwords/#comments</comments>
		<pubDate>Thu, 07 Jun 2007 03:10:25 +0000</pubDate>
		<dc:creator>William</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://beyond-innovation.org/shadowz/2007/06/06/dreamhost-leaked-thousands-of-ftp-passwords/</guid>
		<description><![CDATA[Good thing is that I didn&#8217;t get this email. Because Dreamhost leaked 3,500 FTP passwords!
 From: DreamHost Security Team 
Subject: URGENT: FTP Account Security Concerns…
Hello -
This email is regarding a potential security concern related to your
‘XXXX’ FTP account.
We have detected what appears to be the exploit of a number of
accounts belonging to DreamHost customers, and [...]]]></description>
			<content:encoded><![CDATA[<p>Good thing is that I didn&#8217;t get this email. Because Dreamhost leaked 3,500 FTP passwords!</p>
<blockquote><p><em> From: DreamHost Security Team <support@dreamhost.com><br />
Subject: URGENT: FTP Account Security Concerns…</support@dreamhost.com></em></p>
<p><em>Hello -</em></p>
<p><em>This email is regarding a potential security concern related to your<br />
‘XXXX’ FTP account.</em></p>
<p><em>We have detected what appears to be the exploit of a number of<br />
accounts belonging to DreamHost customers, and it appears that your<br />
account was one of those affected.</em></p>
<p><em>We’re still working to determine how this occurred, but it appears<br />
that a 3rd party found a way to obtain the password information<br />
associated with approximately 3,500 separate FTP accounts and has<br />
used that information to append data to the index files of customer<br />
sites using automated scripts (primarily for search engine<br />
optimization purposes).</em></p>
<p><em>Our records indicate that only roughly 20% of the accounts accessed -<br />
less than 0.15% of the total accounts that we host &#8211; actually had<br />
any changes made to them. Most accounts were untouched.</em></p>
<p><em>We ask that you do the following as soon as possible:</em></p>
<p><em>1. Immediately change your FTP password, as well as that of any other<br />
accounts that may share the same password. We recommend the use of<br />
passwords containing 8 or more random letters and numbers. You may<br />
change your FTP password from the web panel (”Users” section, “Manage<br />
Users” sub-section).</em></p>
<p><em>2. Review your hosted accounts/sites and ensure that nothing has been<br />
uploaded or changed that you did not do yourself. Many of the<br />
unauthorized logins did not result in changes at all (the intruder<br />
logged in, obtained a directory listing and quickly logged back out)<br />
but to be sure you should carefully review the full contents of your<br />
account.</em></p>
<p><em>Again, only about 20% of the exploited accounts showed any<br />
modifications, and of those the only known changes have been to site<br />
index documents (ie. ‘index.php’, ‘index.html’, etc &#8211; though we<br />
recommend looking for other changes as well).</em></p>
<p><em>It appears that the same intruder also attempted to gain direct<br />
access to our internal customer information database, but this was<br />
thwarted by protections we have in place to prevent such access.<br />
Similarly, we have seen no indication that the intruder accessed<br />
other customer account services such as email or MySQL databases.</em></p>
<p><em>In the last 24 hours we have made numerous significant behind-the-<br />
scenes changes to improve internal security, including the discovery<br />
and patching to prevent a handful of possible exploits.</em></p>
<p><em>We will, of course, continue to investigate the source of this<br />
particular security breach and keep customers apprised of what we<br />
find. Once we learn more, we will be sure to post updates as they<br />
become available to our status weblog:</em></p>
<p><em>http://www.dreamhoststatus.com/</em></p>
<p><em>Thank you for your patience. If you have any questions or concerns,<br />
please let us know.</em></p></blockquote>
]]></content:encoded>
			<wfw:commentRss>http://williamzhou.com/blog/2007/06/dreamhost-leaked-thousands-of-ftp-passwords/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Someone is trying to be me!</title>
		<link>http://williamzhou.com/blog/2007/05/someone-is-trying-to-be-me/</link>
		<comments>http://williamzhou.com/blog/2007/05/someone-is-trying-to-be-me/#comments</comments>
		<pubDate>Wed, 23 May 2007 22:46:41 +0000</pubDate>
		<dc:creator>William</dc:creator>
				<category><![CDATA[Personal]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://beyond-innovation.org/shadowz/2007/05/23/someone-is-trying-to-be-me/</guid>
		<description><![CDATA[Today, I opened my Email and I found a email from own email address telling me to go to some weird forum. However, I knew that this was a fake so I took a look at the header and indeed it was. If you got anything from me that looks suspicious, take a look at [...]]]></description>
			<content:encoded><![CDATA[<p>Today, I opened my Email and I found a email from own email address telling me to go to some weird forum. However, I knew that this was a fake so I took a look at the header and indeed it was. If you got anything from me that looks suspicious, take a look at the header and see if it really is me.<br />
<em>X-Message-Status: n:0<br />
X-SID-PRA: shadowz_revolution@hotmail.com<br />
X-SID-Result: SoftFail<br />
X-Message-Info: txF49lGdW40hS9Id2yBkAr37eBHCPhxD13vCtjbg+7PM7Ie16jne9NzMN8kmO9ay<br />
Received: from gladiator.dnsslave.com ([65.99.198.101]) by bay0-mc10-f6.bay0.hotmail.com with Microsoft SMTPSVC(6.0.3790.2668);<br />
Wed, 23 May 2007 13:41:14 -0700<br />
Received: from nobody by gladiator.dnsslave.com with local (Exim 4.63)<br />
(envelope-from &lt;nobody@gladiator.dnsslave.com&gt;)<br />
id 1HqxdS-000464-Eb<br />
for shadowz_revolution@hotmail.com; Wed, 23 May 2007 14:40:42 -0600<br />
To: shadowz_revolution@hotmail.com<br />
Subject: Invited!<br />
From: shadowz_revolution@hotmail.com<br />
Message-Id: &lt;E1HqxdS-000464-Eb@gladiator.dnsslave.com&gt;<br />
Date: Wed, 23 May 2007 14:40:42 -0600<br />
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report<br />
X-AntiAbuse: Primary Hostname &#8211; gladiator.dnsslave.com<br />
X-AntiAbuse: Original Domain &#8211; hotmail.com<br />
X-AntiAbuse: Originator/Caller UID/GID &#8211; [99 99] / [47 12]<br />
X-AntiAbuse: Sender Address Domain &#8211; gladiator.dnsslave.com<br />
Return-Path: nobody@gladiator.dnsslave.com<br />
X-OriginalArrivalTime: 23 May 2007 20:41:14.0399 (UTC) FILETIME=[B48BF2F0:01C79D7A]</em></p>
<p><em>You have been invited by a friend to join jocknet.net/forums/ \n you can reister at jocknet.net/forums/register.php \n Hope you enjoy the site and see your friend there!</em></p>
<p>So what&#8217;s nobody@gladiator.dnsslave.com??</p>
]]></content:encoded>
			<wfw:commentRss>http://williamzhou.com/blog/2007/05/someone-is-trying-to-be-me/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>iTunes 7.1.2 DRM cracked</title>
		<link>http://williamzhou.com/blog/2007/05/itunes-712-drm-cracked/</link>
		<comments>http://williamzhou.com/blog/2007/05/itunes-712-drm-cracked/#comments</comments>
		<pubDate>Tue, 15 May 2007 00:45:05 +0000</pubDate>
		<dc:creator>William</dc:creator>
				<category><![CDATA[Apple]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://beyond-innovation.org/shadowz/2007/05/14/itunes-712-drm-cracked/</guid>
		<description><![CDATA[&#8220;This utility will scrub DRM from YOUR music files and make a backup copy of the originals for safe keeping. Great for iPod owners who now have another brand of music player &#8211; iTunes will convert your AAC files to MP3 when you&#8217;re ready to run away from Apple. I&#8217;m sure this story will be [...]]]></description>
			<content:encoded><![CDATA[<p>&#8220;This utility will scrub DRM from YOUR music files and make a backup copy of the originals for safe keeping. Great for iPod owners who now have another brand of music player &#8211; iTunes will convert your AAC files to MP3 when you&#8217;re ready to run away from Apple. I&#8217;m sure this story will be buried by DMCA lovers&#8221;</p>
<p>Still hot from digg. And DMCA hasn&#8217;t taken any actions yet.</p>
<p>http://www.hymn-project.org/forums/viewtopic.php?t=1553</p>
]]></content:encoded>
			<wfw:commentRss>http://williamzhou.com/blog/2007/05/itunes-712-drm-cracked/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>BBC Broadcast HD-DVD key</title>
		<link>http://williamzhou.com/blog/2007/05/bbc-broadcast-hd-dvd-key/</link>
		<comments>http://williamzhou.com/blog/2007/05/bbc-broadcast-hd-dvd-key/#comments</comments>
		<pubDate>Mon, 07 May 2007 00:27:12 +0000</pubDate>
		<dc:creator>William</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[website]]></category>

		<guid isPermaLink="false">http://beyond-innovation.org/shadowz/2007/05/06/bbc-broadcast-hd-dvd-key/</guid>
		<description><![CDATA[What are they going to do with them now?

Watch the stream.
]]></description>
			<content:encoded><![CDATA[<p>What are they going to do with them now?</p>
<p><img src="http://pepsiman.pwp.blueyonder.co.uk/click-hddvd-small.jpg" height="225" width="400" /></p>
<p>Watch the <a href="http://news.bbc.co.uk/1/hi/programmes/click_online/default.stm">stream</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://williamzhou.com/blog/2007/05/bbc-broadcast-hd-dvd-key/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Ok, one last post of today</title>
		<link>http://williamzhou.com/blog/2007/05/ok-one-last-post-of-today/</link>
		<comments>http://williamzhou.com/blog/2007/05/ok-one-last-post-of-today/#comments</comments>
		<pubDate>Thu, 03 May 2007 06:30:48 +0000</pubDate>
		<dc:creator>William</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[world]]></category>

		<guid isPermaLink="false">http://beyond-innovation.org/shadowz/2007/05/02/ok-one-last-post-of-today/</guid>
		<description><![CDATA[Ok, one last post of today (read below for real posts) before I go to sleep.
I just want to cheer on for digg and the freedom of speech
Vive La Revolution!

]]></description>
			<content:encoded><![CDATA[<p>Ok, one last post of today (read below for real posts) before I go to sleep.</p>
<p>I just want to cheer on for digg and the freedom of speech</p>
<p>Vive La Revolution!</p>
<p><img src="http://www.urlyart.com/gallerypics/digg-popular/digg-popular.jpg" height="381" width="578" /></p>
]]></content:encoded>
			<wfw:commentRss>http://williamzhou.com/blog/2007/05/ok-one-last-post-of-today/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Update: To the Digg rebellion</title>
		<link>http://williamzhou.com/blog/2007/05/update-to-the-digg-rebellion/</link>
		<comments>http://williamzhou.com/blog/2007/05/update-to-the-digg-rebellion/#comments</comments>
		<pubDate>Thu, 03 May 2007 06:17:15 +0000</pubDate>
		<dc:creator>William</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[website]]></category>

		<guid isPermaLink="false">http://beyond-innovation.org/shadowz/2007/05/02/update-to-the-digg-rebellion/</guid>
		<description><![CDATA[http://news.bbc.co.uk/1/hi/technology/6615047.stm
Digg&#8217;s rebellion is now on the front page of BBC News!  What is the HD-DVD &#8216;people&#8217; going to do now?
]]></description>
			<content:encoded><![CDATA[<p><img src="http://newsimg.bbc.co.uk/media/images/42873000/jpg/_42873601_digg203body.jpg" height="152" width="203" /></p>
<p>http://news.bbc.co.uk/1/hi/technology/6615047.stm</p>
<p>Digg&#8217;s rebellion is now on the front page of BBC News!  What is the HD-DVD &#8216;people&#8217; going to do now?</p>
]]></content:encoded>
			<wfw:commentRss>http://williamzhou.com/blog/2007/05/update-to-the-digg-rebellion/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Leakage of HD-DVD processing key</title>
		<link>http://williamzhou.com/blog/2007/04/leakage-of-hd-dvd-processing-key/</link>
		<comments>http://williamzhou.com/blog/2007/04/leakage-of-hd-dvd-processing-key/#comments</comments>
		<pubDate>Tue, 01 May 2007 04:54:40 +0000</pubDate>
		<dc:creator>William</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[PC]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[website]]></category>

		<guid isPermaLink="false">http://beyond-innovation.org/shadowz/2007/04/30/leakage-of-hd-dvd-processing-key/</guid>
		<description><![CDATA[HD-DVD processing key is leaked today to the public allowing anyone to decrpt and play most HD-DVD movies in Linux. Movie studios are going ballistic over this leak, so Digg the story up and make it reach the front page. The first time, the story got removed.
The first story about this key was deleted when [...]]]></description>
			<content:encoded><![CDATA[<p>HD-DVD processing key is leaked today to the public allowing anyone to decrpt and play most HD-DVD movies in Linux. Movie studios are going ballistic over this leak, so Digg the story up and make it reach the front page. The first time, the story got removed.</p>
<p>The first story about this key was deleted when it reached the digg front page however, there is a second one at 8000 diggs the time I am writing this.</p>
<p>Key: 09 F9 11 02 9D 74 E3 5B D8 41 56 C5 63 56 88 C0</p>
<p><a href="http://rudd-o.com/archives/2007/04/30/spread-this-number/" class="user">http://rudd-o.com/archives/2007/04/30/spread-this-number/</a></p>
<p>http://duggmirror.com/linux_unix/Spread_this_number_Now/</p>
<p>http://digg.com/linux_unix/Spread_This_Number_Again</p>
]]></content:encoded>
			<wfw:commentRss>http://williamzhou.com/blog/2007/04/leakage-of-hd-dvd-processing-key/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

